LIVE Webinar | Social Engineering, Phishing & Pen Testing: Hardening Your Soft SpotsContenido de la entradaLeer másDataBreachToday.com RSS Syndication
Month: September 2022
MSA-22-0023: Stored XSS and page denial of service risks due to recursive rendering in Mustache template helpers
MSA-22-0023: Stored XSS and page denial of service risks due to recursive rendering in Mustache template helpersby Michael Hawkins. Recursive rendering of Mustache template helpers containing...
2-Step Email Attack Uses Powtoon Video to Execute Payload
2-Step Email Attack Uses Powtoon Video to Execute PayloadThe attack uses hijacked Egress branding and the legit Powtoon video platform to steal user credentials.Leer másDark ReadingThe...
ChromeLoader Malware Evolves into Prevalent, More Dangerous Cyber Threat
ChromeLoader Malware Evolves into Prevalent, More Dangerous Cyber ThreatMicrosoft and VMware are warning that the malware, which first surfaced as a browser-hijacking credential stealer, is now...
Adopting a Zero Trust Philosophy: A Fireside Chat with John Kindervag
Adopting a Zero Trust Philosophy: A Fireside Chat with John KindervagContenido de la entradaLeer másDataBreachToday.com RSS Syndication
Uber responding to ‘cybersecurity incident’ after hack
Uber responding to ‘cybersecurity incident’ after hackRide-hailing company confirms attack after hacker compromises Slack app and messages employees Uber has been hacked in an attack that...
Hacker Plunders $160M From Crypto Market Maker Wintermute
Hacker Plunders $160M From Crypto Market Maker WintermuteHack May Stem From Known Wallet Addressing VulnerabilityA newly uncovered vulnerability in a wallet addressing tool may be the...
K39178480: Perl vulnerability CVE-2018-18311
K39178480: Perl vulnerability CVE-2018-18311Perl vulnerability CVE-2018-18311 Security Advisory Security Advisory Description Perl before 5.26.3 and 5.28.x before 5.28.1 has a buffer overflow via a crafted regular...
MSA-22-0026: No groups filtering in H5P activity attempts report
MSA-22-0026: No groups filtering in H5P activity attempts reportby Michael Hawkins. The H5P activity attempts report did not filter by groups, which in separate groups mode...
The Evolution of the Chromeloader Malware
The Evolution of the Chromeloader MalwareExecutive Summary Chromeloader proves to be an extremely prevalent and persistent malware. It initially drops as an .iso and can be...
MSA-22-0024: Remote code execution risk when restoring malformed backup file from Moodle 1.9
MSA-22-0024: Remote code execution risk when restoring malformed backup file from Moodle 1.9by Michael Hawkins. A remote code execution risk when restoring backup files originating from...
HHS Slaps 3 Dental Practices With ‘Right of Access’ Fines
HHS Slaps 3 Dental Practices With 'Right of Access' FinesNation's HIPAA Enforcement Agency Also Has a New LeaderThe Department of Health and Human Services slapped three...
K39178480: Perl vulnerability CVE-2018-18311
K39178480: Perl vulnerability CVE-2018-18311Perl vulnerability CVE-2018-18311 Security Advisory Security Advisory Description Perl before 5.26.3 and 5.28.x before 5.28.1 has a buffer overflow via a crafted regular...
MSA-22-0025: Minor SQL injection risk in admin user browsing
MSA-22-0025: Minor SQL injection risk in admin user browsingby Michael Hawkins. A limited SQL injection risk was identified in the "browse list of users" site administration...
MSA-22-0026: No groups filtering in H5P activity attempts report
MSA-22-0026: No groups filtering in H5P activity attempts reportby Michael Hawkins. The H5P activity attempts report did not filter by groups, which in separate groups mode...
MSA-22-0023: Stored XSS and page denial of service risks due to recursive rendering in Mustache template helpers
MSA-22-0023: Stored XSS and page denial of service risks due to recursive rendering in Mustache template helpersby Michael Hawkins. Recursive rendering of Mustache template helpers containing...
The Evolution of the Chromeloader Malware
The Evolution of the Chromeloader MalwareExecutive Summary Chromeloader proves to be an extremely prevalent and persistent malware. It initially drops as an .iso and can be...
MSA-22-0024: Remote code execution risk when restoring malformed backup file from Moodle 1.9
MSA-22-0024: Remote code execution risk when restoring malformed backup file from Moodle 1.9by Michael Hawkins. A remote code execution risk when restoring backup files originating from...
Deep Instinct Snags Former Palo Alto, Zscaler Exec as CEO
Deep Instinct Snags Former Palo Alto, Zscaler Exec as CEODeep Learning Startup Appoints Lane Bess, Raises $62.5M in Shift to Big EnterprisesDeep Instinct has tasked the...
MSA-22-0025: Minor SQL injection risk in admin user browsing
MSA-22-0025: Minor SQL injection risk in admin user browsingby Michael Hawkins. A limited SQL injection risk was identified in the "browse list of users" site administration...
MSA-22-0023: Stored XSS and page denial of service risks due to recursive rendering in Mustache template helpers
MSA-22-0023: Stored XSS and page denial of service risks due to recursive rendering in Mustache template helpersby Michael Hawkins. Recursive rendering of Mustache template helpers containing...
Digital Bank Revolut Confirms Customer Data Breach
Digital Bank Revolut Confirms Customer Data BreachNames, Addresses, Emails and Telephone Numbers Exposed But Money Is SafeCustomers of app-based bank Revolut should be on guard for...
How GRC protects the value of organizations — A simple guide to data quality and integrity
How GRC protects the value of organizations — A simple guide to data quality and integrityContemporary organizations understand the importance of data and its impact on...
Asian Governments and Organizations Targeted in Latest Cyber Espionage Attacks
Asian Governments and Organizations Targeted in Latest Cyber Espionage AttacksGovernment and state-owned organizations in a number of Asian countries have been targeted by a distinct group...
Microsoft’s Latest Security Update Fixes 64 New Flaws, Including a Zero-Day
Microsoft's Latest Security Update Fixes 64 New Flaws, Including a Zero-DayTech giant Microsoft on Tuesday shipped fixes to quash 64 new security flaws across its software lineup, including...
Over 280,000 WordPress Sites Attacked Using WPGateway Plugin Zero-Day Vulnerability
Over 280,000 WordPress Sites Attacked Using WPGateway Plugin Zero-Day VulnerabilityA zero-day flaw in the latest version of a WordPress premium plugin known as WPGateway is being actively exploited...
How to Do Malware Analysis?
How to Do Malware Analysis?Based on the findings of Malwarebytes' Threat Review for 2022, 40 million Windows business computers' threats were detected in 2021. In order...
Researchers Detail OriginLogger RAT — Successor to Agent Tesla Malware
Researchers Detail OriginLogger RAT — Successor to Agent Tesla MalwarePalo Alto Networks Unit 42 has detailed the inner workings of a malware called OriginLogger, which has been...
U.S. Charges 3 Iranian Hackers and Sanctions Several Others Over Ransomware Attacks
U.S. Charges 3 Iranian Hackers and Sanctions Several Others Over Ransomware AttacksThe U.S. Treasury Department's Office of Foreign Assets Control (OFAC) on Wednesday announced sweeping sanctions...
Lorenz Ransomware Exploit Mitel VoIP Systems to Breach Business Networks
Lorenz Ransomware Exploit Mitel VoIP Systems to Breach Business NetworksThe operators behind the Lornenz ransomware operation have been observed exploiting a now-patched critical security flaw in...
















